2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-58289 | MEDIUM | 5.4 | 0.2% | Dec 11, 2025 | Microweber 2.0.15 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject mal... |
| CVE-2024-58288 | HIGH | 8.7 | 0.4% | Dec 11, 2025 | Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service... |
| CVE-2024-58287 | HIGH | 8.8 | 3.0% | Dec 11, 2025 | reNgine 2.2.0 contains a command injection vulnerability in the nmap_cmd parameter of scan engine configuration that all... |
| CVE-2024-58286 | CRITICAL | 9.3 | 0.6% | Dec 11, 2025 | dizqueTV 1.5.3 contains a remote code execution vulnerability that allows attackers to inject arbitrary commands through... |
| CVE-2024-42197 | MEDIUM | 5.5 | 0.1% | Dec 11, 2025 | HCL Workload Scheduler stores user credentials in plain text which can be read by a local user. |
| CVE-2024-8273 | HIGH | 8.8 | 0.3% | Dec 11, 2025 | Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: befor... |
| CVE-2024-40593 | MEDIUM | 4.4 | 0.1% | Dec 11, 2025 | A key management errors vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.2, FortiAnalyzer 7.2.0 through 7.2.5, ... |
| CVE-2024-58285 | MEDIUM | 5.4 | 0.3% | Dec 10, 2025 | Chyrp 2.5.2 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicious scr... |
| CVE-2024-58284 | HIGH | 7.2 | 1.1% | Dec 10, 2025 | PopojiCMS 2.0.1 contains an authenticated remote command execution vulnerability that allows administrative users to inj... |
| CVE-2024-58283 | HIGH | 8.8 | 0.7% | Dec 10, 2025 | WBCE CMS version 1.6.2 contains a remote code execution vulnerability that allows authenticated attackers to upload mali... |
| CVE-2024-58282 | HIGH | 7.2 | 1.0% | Dec 10, 2025 | Serendipity 2.5.0 contains a remote code execution vulnerability that allows authenticated administrators to upload mali... |
| CVE-2024-58281 | HIGH | 8.8 | 0.9% | Dec 10, 2025 | Dotclear 2.29 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP... |
| CVE-2024-58280 | HIGH | 8.8 | 0.9% | Dec 10, 2025 | CMSimple 5.15 contains a remote command execution vulnerability that allows authenticated attackers to modify file exten... |
| CVE-2024-58279 | HIGH | 8.8 | 1.0% | Dec 10, 2025 | appRain CMF 4.0.5 contains an authenticated remote code execution vulnerability that allows administrative users to uplo... |
| CVE-2024-2105 | MEDIUM | 6.5 | 0.2% | Dec 10, 2025 | An unauthorised attacker within bluetooth range may use an improper validation during the BLE connection request to dead... |
| CVE-2024-2104 | HIGH | 8.8 | 0.2% | Dec 10, 2025 | Due to improper BLE security configurations on the device's GATT server, an adjacent unauthenticated attacker can read a... |
| CVE-2024-47570 | MEDIUM | 6.6 | 0.4% | Dec 9, 2025 | An insertion of sensitive information into log file vulnerability [CWE-532] in FortiOS 7.4.0 through 7.4.3, 7.2.0 throug... |
| CVE-2024-56840 | HIGH | 7.5 | 0.6% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56839 | HIGH | 8.6 | 0.6% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56838 | HIGH | 8.6 | 0.4% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56837 | HIGH | 8.6 | 0.5% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56836 | HIGH | 8.8 | 0.4% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56835 | HIGH | 8.8 | 0.5% | Dec 9, 2025 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2024-56464 | LOW | 2.7 | 0.3% | Dec 9, 2025 | IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of direc... |
| CVE-2024-38798 | MEDIUM | 5.8 | 0.1% | Dec 9, 2025 | EDK2 contains a vulnerability in BIOS where an attacker may cause “Exposure of Sensitive Information to an Unauthorized ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now